Product Compare for WooCommerce Security & Risk Analysis

wordpress.org/plugins/product-compare-for-woocommerce

The plugin give you the ability to compare the WooCommerce products by their category

0 active installs v0.3 PHP 5.2+ WP 5.0+ Updated Jun 24, 2024
listproduct-compareproduct-tableproductswoocommerce
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Product Compare for WooCommerce Safe to Use in 2026?

Generally Safe

Score 92/100

Product Compare for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The plugin "product-compare-for-woocommerce" v0.3 exhibits a concerning security posture primarily due to its unprotected AJAX handlers. While the plugin demonstrates good practices in other areas such as SQL query sanitization and output escaping, the presence of seven AJAX handlers without any authentication or capability checks creates a significant attack surface. This means that any unauthenticated user could potentially trigger these AJAX actions, leading to unintended consequences or exploitation if the handler logic is flawed. The absence of any recorded vulnerability history is positive, suggesting the plugin has not had publicly disclosed security flaws. However, this does not negate the immediate risks posed by the unprotected AJAX endpoints. The plugin's strengths lie in its robust handling of SQL queries and generally good output escaping. The weakness lies in its failure to secure critical entry points. Overall, while the plugin avoids common pitfalls like raw SQL or unescaped output, the lack of security on its AJAX handlers is a major concern that requires immediate attention.

Key Concerns

  • 7 AJAX handlers without auth checks
  • 0 Nonce checks on 7 unprotected AJAX handlers
  • 0 Capability checks on 7 unprotected AJAX handlers
Vulnerabilities
None known

Product Compare for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Product Compare for WooCommerce Release Timeline

No version history available.
Code Analysis
Analyzed Apr 16, 2026

Product Compare for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
5
72 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

DataTables

Output Escaping

94% escaped77 total outputs
Attack Surface
7 unprotected

Product Compare for WooCommerce Attack Surface

Entry Points7
Unprotected7

AJAX Handlers 7

authwp_ajax_save_options_adminsideadmin/class-cdlzr-proco-admin.php:25
authwp_ajax_check_upg_prdct_categorypublic/class-cdlzr-proco-public.php:27
noprivwp_ajax_check_upg_prdct_categorypublic/class-cdlzr-proco-public.php:28
authwp_ajax_show_compare_table_popuppublic/class-cdlzr-proco-public.php:34
noprivwp_ajax_show_compare_table_popuppublic/class-cdlzr-proco-public.php:35
authwp_ajax_remove_product_compare_tablepublic/class-cdlzr-proco-public.php:40
noprivwp_ajax_remove_product_compare_tablepublic/class-cdlzr-proco-public.php:41
WordPress Hooks 8
actionadmin_menuadmin/class-cdlzr-proco-admin.php:19
actionadmin_enqueue_scriptsadmin/class-cdlzr-proco-admin.php:27
actionplugin_loadedproduct-compare-for-woocommerce.php:38
actionadmin_noticesproduct-compare-for-woocommerce.php:45
actionwp_enqueue_scriptspublic/class-cdlzr-proco-public.php:22
actionwoocommerce_after_shop_loop_itempublic/class-cdlzr-proco-public.php:53
actionwoocommerce_after_shop_loop_itempublic/class-cdlzr-proco-public.php:54
actionwoocommerce_after_add_to_cart_buttonpublic/class-cdlzr-proco-public.php:59
Maintenance & Trust

Product Compare for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.5.8
Last updatedJun 24, 2024
PHP min version5.2
Downloads965

Community Trust

Rating100/100
Number of ratings1
Active installs0
Developer Profile

Product Compare for WooCommerce Developer Profile

Codelizar

3 plugins · 30 total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Product Compare for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/product-compare-for-woocommerce/assets/css/bootstrap.css/wp-content/plugins/product-compare-for-woocommerce/assets/js/bootstrap.min.js/wp-content/plugins/product-compare-for-woocommerce/assets/css/bootstrap.min.css/wp-content/plugins/product-compare-for-woocommerce/admin/libs/css/admin.css/wp-content/plugins/product-compare-for-woocommerce/admin/libs/js/admin_side.js/wp-content/plugins/product-compare-for-woocommerce/assets/datatable/jquery.dataTables.min.css/wp-content/plugins/product-compare-for-woocommerce/public/libs/proco_public_css.css/wp-content/plugins/product-compare-for-woocommerce/public/libs/popper.min.js+2 more
Script Paths
/wp-content/plugins/product-compare-for-woocommerce/assets/js/bootstrap.min.js/wp-content/plugins/product-compare-for-woocommerce/admin/libs/js/admin_side.js/wp-content/plugins/product-compare-for-woocommerce/public/libs/popper.min.js/wp-content/plugins/product-compare-for-woocommerce/assets/datatable/jquery.dataTables.min.js/wp-content/plugins/product-compare-for-woocommerce/public/libs/public_js.js
Version Parameters
product-compare-for-woocommerce/assets/js/bootstrap.min.js?ver=product-compare-for-woocommerce/admin/libs/js/admin_side.js?ver=product-compare-for-woocommerce/assets/datatable/jquery.dataTables.min.js?ver=product-compare-for-woocommerce/public/libs/public_js.js?ver=1.2

HTML / DOM Fingerprints

CSS Classes
cdlzr_proco_admin_notice
HTML Comments
TEXT DOMAINPlugin Directory URLPlugin Directory PathLOAD TEXT DOMAIN AND CHECK WOOCOMMERCE IS ACTIVATED OR NOT+9 more
Data Attributes
data-toggle="modal"data-target="#cdlzr-proco-compare-modal"
JS Globals
cdlzr_proco_paramsprocopublicajax
REST Endpoints
/wp-json/product-compare-for-woocommerce/v1/products
Shortcode Output
[product_compare_button][product_compare_table]
FAQ

Frequently Asked Questions about Product Compare for WooCommerce